Beveiligingsadvies

CVE-2016-2174

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2016-06-13 14:00:00
Laatst bijgewerkt 2024-08-05 23:17:50
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

SQL injection vulnerability in the policy admin tool in Apache Ranger before 0.5.3 allows remote authenticated administrators to execute arbitrary SQL commands via the eventTime parameter to service/plugins/policies/eventTime.